Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2017-0377

Опубликовано: 02 июл. 2017
Источник: debian

Описание

Tor 0.3.x before 0.3.0.9 has a guard-selection algorithm that only considers the exit relay (not the exit relay's family), which might allow remote attackers to defeat intended anonymity properties by leveraging the existence of large families.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
tornot-affectedpackage

Примечания

  • https://trac.torproject.org/projects/tor/ticket/22753

  • https://blog.torproject.org/blog/tor-0309-released-security-update-clients

Связанные уязвимости

CVSS3: 7.5
ubuntu
больше 8 лет назад

Tor 0.3.x before 0.3.0.9 has a guard-selection algorithm that only considers the exit relay (not the exit relay's family), which might allow remote attackers to defeat intended anonymity properties by leveraging the existence of large families.

CVSS3: 7.5
nvd
больше 8 лет назад

Tor 0.3.x before 0.3.0.9 has a guard-selection algorithm that only considers the exit relay (not the exit relay's family), which might allow remote attackers to defeat intended anonymity properties by leveraging the existence of large families.

CVSS3: 7.5
github
больше 3 лет назад

Tor 0.3.x before 0.3.0.9 has a guard-selection algorithm that only considers the exit relay (not the exit relay's family), which might allow remote attackers to defeat intended anonymity properties by leveraging the existence of large families.